A vulnerability classified as critical has been found in Schreibfaul1 ESP32-audioI2S 3.4.5. This issue affects the function MP3Decoder::decode of the file src/mp3_decoder/mp3_decoder.cpp of the component MP3 Decoder. This manipulation of the argument mainDataBegin/nSlots causes buffer overflow.

This vulnerability appears as CVE-2026-51251. The attack may be initiated remotely. There is no available exploit.